Executive Director of Cybersecurity
الهيئة العامة للمنافسة | General Authority for Competition
Riyadh, Riyadh Province, Saudi Arabia · Full Time
Be the first to apply
- Experience
- Any
- Salary
- —
- Openings
- 1
- Posted
- 2 weeks ago
- Work mode
- In office
- Resume
- Required to apply
Where you'll work
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
Job Overview
The Executive Director of Cybersecurity and Data Office leads governance and risk activities related to cybersecurity within the authority. This role directs compliance and audit processes, oversees cybersecurity operations including defense mechanisms, incident and threat management, and leads the Data Office supervising data governance and management.
Key Responsibilities
- Oversee annual work plan development for cybersecurity units and the Data Office aligned with updated strategic plans, and guide execution.
- Define performance goals and metrics for cybersecurity and data functions according to the authority's objectives and continuously monitor progress.
- Establish annual cybersecurity and data office budgets aligned with plans and needs, ensuring effective resource utilization.
- Ensure IT cybersecurity requirements align with the authority’s cybersecurity strategy.
- Manage cybersecurity decisions consistent with core risk management principles.
- Supervise and contribute to cybersecurity risk assessment outcomes.
- Review prevention and mitigation plans addressing vulnerabilities and gaps effectively.
- Manage cybersecurity risk registers and key risk indicators, establishing controls to secure access to information and technical assets, ensuring effective risk management.
- Oversee implementation of cybersecurity training and awareness programs.
- Examine non-compliance reports; identify and track corrective actions to mitigate potential risks.
- Supervise the design of cybersecurity architecture ensuring alignment with organizational goals.
- Monitor proactive cybersecurity intelligence, threats, and security vulnerabilities within organizational systems; determine and implement necessary countermeasures.
- Oversee vulnerability assessments and penetration testing results.
- Ensure appropriate measures are taken to address risks arising from cybersecurity incidents.
- Manage cybersecurity incident handling including evidence collection, analysis, investigation, and resolution.
- Track implementation of change requests and technical requirements related to business continuity and disaster containment.
- Review periodic reports documenting encountered incidents, threat trends, corrective measures adopted, and recommend improvements.
- Regularly update senior management regarding important reports and significant changes.
- Facilitate collaboration and communication with the National Data Management Office (NDMO).
- Ensure data management policies, strategies, and governance align with the authority’s strategic objectives.
- Review governance frameworks, policies, procedures, and guidelines related to classification, storage, and protection of data.
- Oversee the implementation of roadmaps, tools, and key performance indicators for data management.
- Supervise data governance activities and ensure compliance with approved standards and policies; identify and highlight gaps requiring resolution.
- Monitor and evaluate data management performance; define areas for improvement and corrective actions.